vary: |
Accept-Encoding |
reporting-endpoints: |
coop_report="https://www.facebook.com/browser_reporting/coop/?minimize=0", coep_report="https://www.facebook.com/browser_reporting/coep/?minimize=0", default="https://www.messenger.com/ajax/messenger_error_reports/?device_level=unknown&brsid=7420547588641234244", permissions_policy="https://www.messenger.com/ajax/messenger_error_reports/" |
report-to: |
{"max_age":2592000,"endpoints":[{"url":"https:\/\/www.facebook.com\/browser_reporting\/coop\/?minimize=0"}],"group":"coop_report","include_subdomains":true}, {"max_age":86400,"endpoints":[{"url":"https:\/\/www.facebook.com\/browser_reporting\/coep\/?minimize=0"}],"group":"coep_report"}, {"max_age":259200,"endpoints":[{"url":"https:\/\/www.messenger.com\/ajax\/messenger_error_reports\/?device_level=unknown&brsid=7420547588641234244"}]}, {"max_age":3600,"endpoints":[{"url":"https:\/\/www.messenger.com\/ajax\/messenger_error_reports\/?device_level=unknown&brsid=7420547588641234244"}],"group":"network-errors"}, {"max_age":21600,"endpoints":[{"url":"https:\/\/www.messenger.com\/ajax\/messenger_error_reports\/"}],"group":"permissions_policy"} |
content-security-policy-report-only: |
script-src *.facebook.com *.fbcdn.net *.facebook.net 127.0.0.1:* 'unsafe-inline' blob: data: 'self' connect.facebook.net 'unsafe-eval' *.messenger.com https://*.google-analytics.com *.google.com;style-src data: blob: 'unsafe-inline' *.facebook.com *.fbcdn.net *.messenger.com;connect-src http://localhost:3103 *.facebook.com facebook.com *.fbcdn.net *.facebook.net wss://*.facebook.com:* wss://*.whatsapp.com:* attachment.fbsbx.com ws://localhost:* blob: *.cdninstagram.com 'self' *.messenger.com wss://*.messenger.com www.messenger.com wss://*.messenger.com:* https://*.google-analytics.com;font-src *.messenger.com *.facebook.com https://*.fbcdn.net data: https://fonts.gstatic.com;img-src *.fbcdn.net https://*.facebook.com cdninstagram.com *.cdninstagram.com data: *.fbsbx.com *.messenger.com messenger.com blob: android-webview-video-poster: *.xx.fbcdn.net https://messenger.com *.oculuscdn.com *.tenor.co *.tenor.com *.giphy.com https://*.google-analytics.com;media-src *.messenger.com *.facebook.com https://*.fbcdn.net data: *.fbsbx.com *.fbcdn.net *.cdninstagram.com blob: https://*.giphy.com;frame-src *.messenger.com *.facebook.com https://*.fbcdn.net data: *.fbsbx.com *.fbcdn.net *.cdninstagram.com blob: *.doubleclick.net;worker-src *.messenger.com/static_resources/webworker_v1/init_script/ *.messenger.com/static_resources/webworker/init_script/ *.messenger.com/static_resources/sharedworker/init_script/ *.messenger.com/static_resources/webworker/map_libre/ *.messenger.com/static_resources/webworker/map_libre_rtl/ *.messenger.com/sw/ *.messenger.com/sw;block-all-mixed-content;report-uri https://www.facebook.com/csp/reporting/?minimize=0; |
content-security-policy: |
default-src data: blob: https://*.fbcdn.net https://*.facebook.com *.fbsbx.com *.messenger.com;script-src *.facebook.com *.fbcdn.net *.facebook.net 127.0.0.1:* 'unsafe-inline' blob: data: 'self' connect.facebook.net 'unsafe-eval' *.messenger.com https://*.google-analytics.com *.google.com;style-src data: blob: 'unsafe-inline' *.facebook.com *.fbcdn.net *.messenger.com;connect-src http://localhost:3103 *.facebook.com facebook.com *.fbcdn.net *.facebook.net wss://*.facebook.com:* wss://*.whatsapp.com:* attachment.fbsbx.com ws://localhost:* blob: *.cdninstagram.com 'self' *.messenger.com wss://*.messenger.com www.messenger.com wss://*.messenger.com:* https://*.google-analytics.com;font-src *.messenger.com *.facebook.com https://*.fbcdn.net data: https://fonts.gstatic.com;img-src *.fbcdn.net https://*.facebook.com cdninstagram.com *.cdninstagram.com data: *.fbsbx.com *.messenger.com messenger.com blob: android-webview-video-poster: *.xx.fbcdn.net https://messenger.com *.oculuscdn.com *.tenor.co *.tenor.com *.giphy.com https://*.google-analytics.com;media-src *.messenger.com *.facebook.com https://*.fbcdn.net data: *.fbsbx.com *.fbcdn.net *.cdninstagram.com blob: https://*.giphy.com;frame-src *.messenger.com *.facebook.com https://*.fbcdn.net data: *.fbsbx.com *.fbcdn.net *.cdninstagram.com blob: *.doubleclick.net; |
document-policy: |
force-load-at-top |
permissions-policy: |
accelerometer=(), attribution-reporting=(), autoplay=(), bluetooth=(), camera=(self), ch-device-memory=(), ch-downlink=(), ch-dpr=(), ch-ect=(), ch-rtt=(), ch-save-data=(), ch-ua-arch=(), ch-ua-bitness=(), ch-viewport-height=(), ch-viewport-width=(), ch-width=(), clipboard-read=(), clipboard-write=(self), compute-pressure=(), display-capture=(self), encrypted-media=(), fullscreen=(self), gamepad=(), geolocation=(self), gyroscope=(), hid=(), idle-detection=(), interest-cohort=(), keyboard-map=(), local-fonts=(), magnetometer=(), microphone=(self), midi=(), otp-credentials=(), payment=(), picture-in-picture=(), private-state-token-issuance=(), publickey-credentials-get=(), screen-wake-lock=(), serial=(), shared-storage=(), shared-storage-select-url=(), private-state-token-redemption=(), usb=(), unload=(self), window-management=(), xr-spatial-tracking=();report-to="permissions_policy" |
cross-origin-resource-policy: |
same-origin |
nel: |
{"report_to":"network-errors","max_age":3600,"failure_fraction":0.01} |
cross-origin-embedder-policy-report-only: |
require-corp;report-to="coep_report" |
cross-origin-opener-policy: |
same-origin-allow-popups |
pragma: |
no-cache |
cache-control: |
private, no-cache, no-store, must-revalidate |
expires: |
Sat, 01 Jan 2000 00:00:00 GMT |
x-content-type-options: |
nosniff |
x-xss-protection: |
0 |
x-frame-options: |
DENY |
origin-agent-cluster: |
?1 |
strict-transport-security: |
max-age=15552000; preload; includeSubDomains |
content-type: |
text/html; charset="utf-8" |
x-fb-debug: |
fud6EtwNfgU77d3Z7jl1ilZZ4WW497Gx+fbeofyAb/ZafdC5Wcefw728KGNYATLrKO1kK4MNqEcHv/mZixahhg== |
date: |
Mon, 30 Sep 2024 21:14:31 GMT |
transfer-encoding: |
chunked |
x-fb-connection-quality: |
EXCELLENT; q=0.9, rtt=10, rtx=0, c=10, mss=1380, tbw=391, tp=-1, tpl=-1, uplat=223, ullat=0 |
alt-svc: |
h3=":443"; ma=86400 |
connection: |
close |
|